The Armazem Brasileiro Breach That Put 3,484 Email Addresses at Risk
In August 2018, HEROIC found 3,484 email addresses and salted MD5 password hashes from Armazem Brasileiro exposed on a hacker forum. The database and combolist were compiled from a breach of the Brazilian e-commerce platform's user records.
Why the Armazem Brasileiro Breach Is Dangerous
Although MD5 hashes are salted, MD5 remains a weak algorithm susceptible to brute-force attacks and precomputed lookup tables. Attackers can crack a significant portion of these passwords, then use the results to compromise accounts across other platforms where users reused credentials.
What Was Exposed in the Armazem Brasileiro Leak
- Email addresses
- Salted MD5 password hashes
Why This Armazem Brasileiro Data Puts You at Risk
Cracked passwords from this dataset enable credential stuffing attacks targeting banking apps, email providers, and social networks. Brazilian users who reused their Armazem Brasileiro password on active accounts face ongoing risks of account takeover and identity theft.
How Database Breaches Work
Database breaches occur when attackers exploit vulnerabilities in a website's infrastructure to extract stored user data. Once inside, they download the entire user table -- including credentials -- and distribute the data on underground forums. Combolists are then assembled from multiple breaches to amplify the scale of attacks.
Check If Your Data Was Exposed
HEROIC operates one of the world's largest breach databases, covering more than 400 billion leaked records. Use HEROIC's free breach scanner to check if your email address or credentials appeared in the Armazem Brasileiro leak or thousands of other breaches in our database.
Breach Breakdown
3,484 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds